BugSearch is an information portal focused on applications security, web oriented and not. We offer our services to disclose our registered users on security alerts found on the net, in order to warn them as soon as possible on bugs, system flaws, exploits and threats afflicting applications and possible patches.

New Feature: Post New Exploit

Register now to start receiving our security alerts of your favourite applications or try our new Android App which will keep you updated everywhere you are!


Last Advisories
Silver Peak VXOA < 6.2.11 - Multiple Vulnerabilities 15-09-2015
TP-Link NC200/NC220 Cloud Camera 300Mbps Wi-Fi - Hard-Coded Credentials 15-09-2015
Total Commander 8.52 - SEH-Overwrite BOF 15-09-2015
IKEView.exe R60 - Stack Buffer Overflow 14-09-2015
Windows Media Center Command Execution - MS15-100 11-09-2015
Logitech Webcam Software 1.1 - eReg.exe SEH/Unicode Buffer Overflow 11-09-2015
Monsta FTP 1.6.2 - Multiple Vulnerabilities 11-09-2015
OpenLDAP 2.4.42 - ber_get_next Denial of Service 11-09-2015
Octogate UTM 3.0.12 - Admin Interface Directory Traversal 10-09-2015
Synology Video Station 1.5-0757 - Multiple Vulnerabilities 10-09-2015
php - cgimode fpm writeprocmemfile bypass disable function demo 10-09-2015
OS X Install.framework suid Helper Privilege Escalation 10-09-2015
OS X Install.framework Arbitrary mkdir, unlink and chown to admin Group 10-09-2015
OS X Install.framework suid root Runner Binary Privilege Escalation 10-09-2015
Auto-Exchanger 5.1.0 - CSRF Vulnerability 09-09-2015
Qlikview <= 11.20 SR11 - Blind XXE Injection Vulnerability 09-09-2015
PHP unserialize() Use-After-Free Vulnerabilities 09-09-2015
Android Stagefright - Remote Code Execution 09-09-2015
PHP SplObjectStorage unserialize() Use-After-Free 09-09-2015
PHP GMP unserialize() Use-After-Free 09-09-2015
PHP Session Deserializer Use-After-Free 09-09-2015
PHP SplDoublyLinkedList unserialize() Use-After-Free 09-09-2015
Linux/x86 - execve("/bin/cat", ["/bin/cat", "/etc/passwd"], NULL) 09-09-2015
DirectAdmin Web Control Panel 1.483 - Multiple Vulnerabilities 08-09-2015
Advantech WebAccess 8.0, 3.4.3 ActiveX - Multiple Vulnerabilities 08-09-2015
Cisco Sourcefire User Agent 2.2 - Insecure File Permissions 08-09-2015
IBM AIX High Availability Cluster Multiprocessing (HACMP) Local Privilege Escalation 0day 08-09-2015
JSPMySQL Administrador - Multiple Vulnerabilities 07-09-2015
NETGEAR Wireless Management System 2.1.4.15 (Build 1236) - Privilege Escalation 07-09-2015
Endian Firewall Proxy Password Change Command Injection 07-09-2015